Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Discovered 2026-04-12 22:24 UTC
Est. attack date 2026-04-12
Country US

Description:

[AI generated] Ralph Lauren Corporation is an American fashion and lifestyle company headquartered in New York City. Founded in 1967 by designer Ralph Lauren, it designs, markets, and distributes luxury apparel, accessories, home furnishings, and fragrances. Operating globally across North America, Europe, and Asia, its portfolio includes brands such as Polo Ralph Lauren, Ralph Lauren Purple Label, and Lauren Ralph Lauren.

Infostealer activity detected by HudsonRock

Compromised Employees: 7

Compromised Users: 5974

Third Party Employee Credentials: 99


External Attack Surface: 105


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabusecscglobal.com
MX Records
  • ralphlauren-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • fvZP6f/u5BHv51QcdRt8mzDxu/hge+Jj3aS6N/1cDWGnYD1UeTDeMcvVRR3NpUafbYtRjMGfpgWfU7hQZWDEjQ==
  • cursor-domain-verification-08c407=47oKNlgrkuF5k3BVsvCMYUgR5
  • ZOOM_verify_fAoE2GPRS-asSUzTOodkqQ
  • onetrust-domain-verification=5a98a23be54f4b4aabcc5260008ed830
  • google-site-verification=VyUTN88Jvp8Ny29A0qbW5cmPNqZy0mz4ts_T-W-KeU0
  • dropbox-domain-verification=jhjdebrfzqcq
  • ralphlaurentest.azurewebsites.net
  • apple-domain-verification=dxaeujca7CyiQR6F
  • docusign=3fe23cf7-091c-469c-b1fb-256c2fd3dcac
  • MS=F197AB487FB2CE115F8DC4C2AD3E33F0501C285D
  • wiz-domain-verification=c538b3eb55e60caeb43644af68f85fe0ed6641e8999f65ce2202c976fdffd432
  • onetrust-domain-verification=d9022aa4ff784e2fad14f2ab064a5d27
  • google-site-verification=PUTihe-QEjut34XyAahBgoSO3ms8hIWbZumu4LfvOkY
  • e342309b418f47e68eb7dd7e14875cb5
  • uber-domain-verification=669861a6-72d7-44c9-a93f-eb05dacf33ff
  • geodis_ciam_key=%GxIEUn^6H$8MwSY6*zbTYwU
  • zoho-verification=zb02323271.zmverify.zoho.com
  • google-site-verification=MqysbfR9DPtSZkO5VZZVSjJD5SkRJtk2dyt9BAc3TkI
  • v=spf1 mx ip4:74.113.66.0/24 ip4:212.203.98.128/25 ip4:218.213.74.96/27 ip4:20.185.215.133/32 ip4:20.185.215.130/32 include:spf.protection.outlook.com a:production.na01.ralphlauren.demandware.net a:production.eu01.ralphlauren.demandware.net a:production.a" "p01.ralphlauren.demandware.net -all
  • jamf-site-verification=xbGxUvcaviHwhkOqXWaoug
  • adobe-idp-site-verification=40381ccb82f6bce824a63b6ec6b8c4141fd4f8416f8116c0999a10fd67aedd0d
  • atlassian-domain-verification=kHAkCZPyKs8LohPGIfxmquuVpr60hnFzyBRCxAWIDnhGeSQ59mMNBS76e2R/52qV
  • cyderes-domain-verification-4dmrwa=JHMHlDyT69RtnwQ9mVvObg9fQ
  • docusign=719bcd2c-ec03-4fd9-993d-16ad9788b0db
  • figma-domain-verification=ccac9505b0435bf155e41b3edff9f6eaff386b929c8310840d110f2d0a7eba8e-1737570402
  • google-site-verification=gePnD5ytF7WN_aLONg83cDoC697-pFvUkchHO6P6sgo
  • SFMC-QOmXXP8aB4G9rKT7mx5LLcutZBU6_XgPKuYJuj7o
  • bv-domain-verification=80a21b012fadd7c5770ebbf33cb93edde113df3ba6f3366479d38c74db84d804
  • google-site-verification=A1AkwRMT_CE1TbLBx5LayH0hN7PDJ81KYFdoXoRuY_4
  • dropbox-domain-verification=j2b9f7erjnv5
  • fastly-domain-delegation-797578-2024816
  • google-site-verification=qJbJNObczRaq7NbFrFBBq1PGEPLcJpY-zoJQyj-Hfuo
  • adobe-sign-verification=50055b9eadc1dd1bda650084dfc8927
  • atlassian-domain-verification=C5CSFaxsyTtSzjY76xW8aF3WYka/iXM2PupLAwy5Ys8dDXYnyUZ/TNHoPmyG4YnQ
  • google-site-verification=wChaovHrBMXKXDf-MrM1J9ZbjDA_COxOTtDVWHel0rI
  • facebook-domain-verification=9jlg4g4plsv5egbiqyatmxtvmkao6x
Cloud / SaaS Services Detected
Adobe Apple Atlassian Dropbox Box JamF Zoho Campaigns Bing Webmaster OneTrust DocuSign Zoom

Leak Screenshot:

Leak Screenshot